Skip to content

Commit 7fe4030

Browse files
committed
Return success on sendPasswordResetEmail even if email not found.
1 parent 7a01fa0 commit 7fe4030

File tree

1 file changed

+5
-4
lines changed

1 file changed

+5
-4
lines changed

src/Routers/UsersRouter.js

Lines changed: 5 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -357,10 +357,11 @@ export class UsersRouter extends ClassesRouter {
357357
},
358358
err => {
359359
if (err.code === Parse.Error.OBJECT_NOT_FOUND) {
360-
throw new Parse.Error(
361-
Parse.Error.EMAIL_NOT_FOUND,
362-
`No user found with email ${email}.`
363-
);
360+
// Return success so that this endpoint can't
361+
// be used to enumerate valid emails
362+
return Promise.resolve({
363+
response: {},
364+
})
364365
} else {
365366
throw err;
366367
}

0 commit comments

Comments
 (0)